Vulnerability Description
An Access Control vulnerability exists in CLARO KAON CG3000 1.00.67 in the router configuration, which could allow a malicious user to read or update the configuraiton without authentication.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Claro | Kaon Cg3000 Firmware | 1.00.67 |
| Claro | Kaon Cg3000 | - |
Related Weaknesses (CWE)
References
- https://alexandrevvo.medium.com/improper-access-control-no-control-at-all-in-kaoExploitThird Party Advisory
- https://alexandrevvo.medium.com/improper-access-control-no-control-at-all-in-kaoExploitThird Party Advisory
FAQ
What is CVE-2021-43483?
CVE-2021-43483 is a vulnerability with a CVSS score of 8.0 (HIGH). An Access Control vulnerability exists in CLARO KAON CG3000 1.00.67 in the router configuration, which could allow a malicious user to read or update the configuraiton without authentication.
How severe is CVE-2021-43483?
CVE-2021-43483 has been rated HIGH with a CVSS base score of 8.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-43483?
Check the references section above for vendor advisories and patch information. Affected products include: Claro Kaon Cg3000 Firmware, Claro Kaon Cg3000.